North Korean Actors Exploit Weak DMARC Security Policies to Mask Spearphishing Efforts North Korean Actors Exploit Weak DMARC Security Policies to Mask Spearphishing Efforts

TLP:CLEAR

SUMMARY

The Federal Bureau of Investigation (FBI), the U.S. Department of State, and the National Security Agency (NSA) are jointly issuing this advisory to highlight attempts by Democratic People’s Republic of Korea (DPRK, a.k.a. North Korea) Kimsuky cyber actors to exploit improperly configured DNS Domain-based Message Authentication, Reporting and Conformance (DMARC) record policies to conceal social engineering attempts.

Please click here to read more detail

TLP:CLEAR